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Method and System for Mobile Station Positioning 
in Cellular Communication Networks 

Field of the Invention 

This invention relates to tracking, positioning and determining locations of 
plurality of mobile cell phones in wireless communication networks such as CDMA, 
TDMA, AMPs, etc. More specifically, the invention relates to MS location methods in 
cellular communication networks. 

Background and Objects of Present Invention 

Cellular Networks in USA comprises of 18,000 cell sites (statistics based on years 
1998-99). Cell coverage varies for various cellular systems and is overlapping. In many 
dense urban systems 7 to 8 cell sites cover a geographic point, in less dense areas 3 to 4 
sites handle a call The existing networks are therefore suited for our location systems, 
which must receive transmitted signal from multiple sites. FCC 91 1 Public Safety 
Answering Point PSAP requiresl25m and 65% accuracy AMPS Cellular Networks 
serviced 28 million cell phones in USA 1995 using AMPS standard "A" & "B H bands 
(416 channels, 30 kHz wide 21 channels for control purposes and 395 voice purposes). 
These systems use Reverse control channel -RACH for mobile phone locations (with 
transmission of 10 Kbytes/sec where minimum time of one transmission Tx = 100ms). 
RACH generally can support 2 to 3 transmissions per second. Reverse control channel 
RACH is also used for various other functions: MS registration, call origination and call 
reception. All RACH Messages are sent by conventional wire network to MTSO mobile 
switching office. CDMA and TDMA standard protocols conforming to AMPS are also 
widely used in USA with some differences. GSM standard protocol is generally used in 
Europe and will not be generally considered for the inventive system. 

Existing Location Technology and Methods such as SigmaOne Location System, 
generally rely on the existing communication networks. Using independent system of 
data gathering equipment such as multiple Location units and specialized Location 
Network Controller which utilizes custom designed phase array antennas they attempt to 
provide positioning data with 150-250 meter accuracy. 

These systems also use a number of known geometric methods to calculate 
mobile cell phone coordinates: signal attenuation, angle of arrival and time difference of 
arrival measurements. In the present embodiment several improvements for precise 
positioning are proposed. 

Relevant Patent Cases 

United States Patent 5,890,069, "Wireless location System". Proposes strategy 
for TOA locations of mobile phones. All base stations BS are synchronized by GPS- 
protocol (Global Positioning System). Super-Resolution (SR) mode measures time from 
all mobile MS to all base stations BS. Time is defined by compensations and by signal 
time delay at the input correlator, which is located after antenna array. Measurements are 
carried out in RECC mode (Reverse Control Channel) using 1 1-bits Barcker's code and 
7-bits of signal sync code of frames. In this TOA method, mode delay line must consist 
of the general system-feedback synchronizing both BTS and MS. It should be noted that 
compensation methods are slower than direct methods of measurements and less 



2 



Makor009 



accurate. Locations of client MS are result of compensation measurements. No software 
application is presented for processing the results of measurements. 

United States Patent 6,121,927, "Determination of Terminal Location in Radio 
System". This patent proposes to use a pilot signal for location mobile phones. Time of 
receipts of electromagnetic wave to antennas of three base stations BS is defined by the 
correlation processing of signals from array-antenna elements. In accepted standard 
levels, duration (time of correlations) is defined by mutual correlation Junctions. 
Direction and distance to MS is obtained by constructing 3 circle-intersection, which 
defines the area of most likely MS location. This patent is proposed for IS-95 CDMA 
(Code Division Multiple Access) standard systems. As is well known, generally TOA 
techniques are less accurate in MS location calculations and no TDOA calculations are 
proposed in this patent. 

United States Patent 6,070,079, "Positioning Apparatus Used in Cellular 
Communication System and Capable of Carrying out a Positioning with a High Accuracy 
in Urban Area This patent proposes to define distance to the mobile phone MS on the 
energy spectrum bandwidth of signal in the output correlator, which is located together 
with array antenna. Distance and direction to MS is defined by the power-gain 
bandwidth. Spread-spectrum processing in the correlator is processed by a processor. 
Use of the Fourier processor limits speed and accuracy of measurement. 

Advantages of the Invention 

The present invention attempts to combine methods and tools from several fields 
such as Intelligent Traffic Systems, cell phone emergency location services and 
intelligent computational applications. ITS systems rely increasingly on smart signaling 
devices and sensors to determine and map traffic congestion patterns in real time. 

By obtaining multiplicity of MS coordinates simultaneously in a large number of 
cell BSs, this invention provides real time data for tracking and mapping urban traffic 
congestion as proposed in US Patent Application Serial No. 09/528, 13 4, "Real Time 
Vehicle Guidance and Forecasting System Under Traffic Jam Conditions" (Makor Co.). 

Cellular networks location systems can provide additional capabilities besides 
existing sensor device systems, for obtaining moderately reliable position information 
and statistics for the Traffic Service Center databases in ITS systems. While many 
previous patents described methods for individual MSs location in real time, none has 
applied MS positioning techniques to ITS systems. 

The present invention also attempts to improve accuracy of many proposed 
location devices. Using GPS-synchronized additional supporting location receivers in all 
monitoring BSs to calculate TDOA time difference delay and 'smart' antennas with high 
gain RF coverage. 

A comprehensive approach to position ambiguity will be used to significantly 
reduce position errors. The stand-by tracking position data will then be used on 
geographical road maps as a basis for continuous positioning. 

Algorithmic methods include Attenuation, AOA and TDOA methods. 

Brief Description of the Invention 

The preferred embodiments of the invention deal with all relevant functions of 
System of Cell Phone Positioning in real time with specialized Location Device 
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installations on multiplicity of base stations BSs in CDMA an TDMA cellular 
communication networks. The purposed of the positioning sytem is to locate a large 
quantity of anonymous mobile cell phones MS in any number of network cells to be used 
for real time traffic-forecasting systems, emergency services such as E911, and other 
client-initiated position requests. The system is capable of covering large urban 
geografical areas and number of independent cell structures serving thousands of mobile 
cell phone clients. It is an independent turnkey solution with specialized synchronized 
Location Device installations in each cell BS with a centrally located specialized 
triangulation sofware based on Angle of Arrival (AO A), Time of Arrival (TO A), and 
Time Difference of Arrival (TDOA) methods for high speed location processing. The 
inventive system consists of number of component functions: Operator-initiated 
functions, Location Device functions and software-controlled mathematical functions. 

Combination of location determining techniques AO A, TOA and TDOA will be 
used for optimal location strategy. As the accuracy of array-antenna based direction 
determining AOA and TOA systems decreases over the relative distance between base 
stations BS and mobile source MS the TDOA hyperbolic/hyperboloid techniques 
complement and improve the overall location performance. The TDOA location 
technique involves use of time delays of MS source signal between several base stations 
BSs synchronized receivers in CDMA standard. Results are calculated from a set of 
nonlinear equations and specialized algorithms are utilized to solve problems of 
ambiguity. Two approaches are generally used in TDOA: subtracting TOA measurements 
from two BSs to produce relative TDOA, or using cross-correlation techniques where 
received signal at one BS is correlated with the same signal at another BS. 

Transmission timing is done with Global Positioning System GPS clock and full 
system synchronization is required between base stations BSs and MS. In IS-95 CDMA 
standard full synchronization is available for relative and cross-correlation TDOA 
techniques. 

According to the present invention, a Location Device (LD) located in each BS 
will be used for signal correlation purposes as shown in Fig. la and Fig. lb. It is based on 
the TDOA signal cross-correlation techniques and will complement existing BS standard 
IS-95 CDMA equipment. 

The LD' s main purpose is to create a Timing Block (7) mechanism to efficiently 
correlate and quantify the arriving source signal from two BS antennas Al and A2. Two 
variations of Timing block mechanism are proposed here: 

1. LD consists of additional receiver (6a) from supporting communication 
channel in antenna A2, specialized CDMA correlator (6) (see Fig. la) for compression of 
signal and special time interval counter for time delays in time block (7) in the time 
accumulation and time interrupt mode. Resulting digital data is then transmitted via 
digital interface to LDS database (4) for MS location calculations. The LD is fully 
synchronized with the BS receiver (1) antenna Al by the system GPS clock (5), PLL 
Synthesizer and Digital Clock (3) for digital signal processing. 

Group time of delay is measured by Timing Block (7) resulting from propagation delay 
due to spreading a from the MS transmitter (8) to the receiver (1). Time interval is 
measured between the supporting signal from A2 synchronized in the PLL frequency 
synthesizer (3) formed by the correlator (6) and by the receiver (1). Timing Block LD (7) 
measures sections of signal windows frames of time intervals in CDMA to improve 
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measurement accuracy. Time difference measurements of the signal delays come from 
two antennas Al and A2 and the time delay is measured between the signal from the 
receiver 1 and signal from the correlator 6 in the additional supporting communication 
channel. 

2. For the simple time of arrival TO A technique a variation of Timing Block (7) is 
proposed in Fig. la. A single existing Antenna Al in BS receives mobile source signal 
and measures time delay between MS antenna A3. In this variation all BSs will be 
synchronized in the network system clock such as exist in CDMA standard. Absolute 
time difference measurements of MS signal are compared and calculated from two 
different BSs. Time difference data for distance calculations are then stored in the central 
LDS Location Register database. 

The present invention proposes to use wireless 3D hyperbolic trilateral location 
method for determining cell phone position and filtering out possible position 
ambiguities. Conventional radiolocation systems locate a MS by measuring propagation 
times of the signals traveling between the MS and a fixed set of BSs. There are three 
major types of radiolocation systems: those based on signal strength, or attenuation 
methods (AT), those based on angle of arrival (AO A), and those measuring time of 
arrival (TOA or TDOA). After direction of paths to/from a MS from/to multiple BSs 
have been determined, geometrical relationships are used to determine the location. Each 
of the lines of position, i.e., the curves that describe the possible location of the MS, can 
be described mathematically using the relative geometry of the BSs and MS, while 
intersection of those lines indicates the presumed location of the MS. Locations of cell 
phones can be determined in the same way. However, to achieve good accuracy in 
location estimates, it is necessary that line of sight paths exist between the MS and the 
BSs that are utilized in the location process. This cannot always be assumed in real 
situations, especially in urban areas where ambiguities arising from multiple crossings 
(multipath) are common. Therefore, various combinations of the above mentioned 
methods will be used for exhaustive utilization the existing data on the one hand, and for 
filtering out possible false locations on the other. The general scheme of computations is 
shown in Fig. 7 and further details are given in the Detailed Description below. 

The Cellular network Operator-initiated functions: 

1 . Cellular network operator initiates a sequence of silent Positioning Request 
Signals (PRS) via BS control channel to mobile cellular phones MS's from the 
serving pilot BS according to some predetermined order by mathematical 
algorithms. Since it is essential to obtain a large number of MS position signals, 
the operator must deal with existing communication traffic constraints and the 
need for providing continuous tracking of MS data. 

2. Mobile cellular phone MS responds to position signal PRS only if the MS is 
currently in stand-by (idle) mode in RACCH protocol The operator can also 
obtain positioning data when MS is engaged however in this discription we will 
concentrate on stand-by mode MS responses only. 
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3. Location Device modules installed on serving BSs process silent positioning 
response signals to co-located for Timing Block Time- Start/Stop Stamping,TOA 
signal delays: t u t 29 ... 9 t h , or TDOA Ax for each MS. 

4. Operator maintains synchronization of cell base station antennas via GPS system 
clock and in additional Location Device Antennas 

5. Receiving MS PRS signals from multiplicity of cell base stations equipped with 
LD modules 

6. Forwarding, from said multiplicity cell base stations, TOA and TDOA data and 
timing information to central Location Database Server (LDS). Transmitting 
location data to interested cellular network clients 

The Location Device Module functions: 

1 . Receiving succeeding MS Positioning response signal PRS 

2. Identifying and Decoding incoming PRS signal 

3. Performing signal identification code ( ID) and Time Stamp functions 

4. Storing PRS signal delays At in temporary LD memory 

5. Transmitting packets of collected PRS data from each BS to LDS in forwarding 
module via digital interface. 

Location Database Server functions: 

1. Calculating TDOA location for each MS data from multiplicity of BS and 
based on applied weighted algorithm for 3-5 BS Location Device antennas 

2. Applying attenuation methods, and angle of arrival methods to signals from two 
BS LD antennas 

3. Optimizing and reducing position ambiguities in case of two or more available 
solutions or ambiguious results 

Brief Description of the Drawings 

Fig. la: Diagram of Location Device Scheme 1 with additional supporting 
antenna A2 describing Timing Block that is based on the TDOA measurements in two 
reception channels in a single BS. 

Fig. lb: Diagram of Location Device Scheme 2 with single existing BS antenna 
A2 describing Timing Block that is based on the TOA method in two reception channels 
in two base stations. 

Fig. lc: Diagram of Location Service Scheme with Location Devices located on 
each BS. Each LD is synchronized by GPS clock if necessary, processing MSi code 
signal and calculating TOA and TDOA signal delays: r or At for each MS to be passed 
to Location Database Server via digital interface for MS positioning. 

Fig. 2: Diagram of BS receiver with Timing Block device which describes the 
time delay phase detector (4) with VC02 oscillator and timing block LD (6) for phase 
synchronizing systems from MS VCOl oscillator to compensate for the signal phase 
delay (Time Lag) (3) due to the signal propagation r . 
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Fig. 3a: Diagram of BS antenna configuration for location of MS in real time 
using TO A method. Each BS1 ... BS5 is synchronized by system clock and receives MS 
signal with propagation r x , r 2 ,...,r 5 absolute time delay. 

Fig. 3b: Diagram of BS antennas Al ... A3 configuration with additional 
supporting antennas Al,l ...A3,3 for location of MS using TDOA and AOA methods 
showing 3 base stations and their antenna arrangement. 

Fig. 4a: Partial Diagram of Location Device with a RF receiver (2) and IF 
receiver (3) located in base station BS1 for sequential input to Timing Block Processor 
for TOA calculations. 

Fig. 4b: Continuation of Fig. 4a 

Fig. 5a: A Partial Diagram for the Timing Block Processor for time difference 
measurements TDOA. 

Fig. 5b: Diagram describing signal window frames of several incoming signals 
explaining the principles of measurements of time intervals r in the Timing Block 
Processor. 

Fig. 6a: A Partial Diagram of Location Device with a RF receiver (1), antennas 
Al and supporting RF receiver (2) and supporting antenna Al,l located in base station 
BS 1 for input to sequence correlators and Timing Block Processor for TDOA 
calculations in this two-antenna configuration. 

Fig. 6b: Diagram of 2-Receiver Configuration continued 

Fig. 7: TDOA 3-D Representation 

Fig. 8: Wireless 3D Hyperbolic Trilateral Location Method 

Fig. 9: Single Base Station 

Fig. 10: Two Base Stations 

Fig. 11a: Three Base Stations: AOA Method 

Fig. lib: Three Base Stations: AT Method 

Fig. 12a: Computations for Case of Three Base Stations 

Fig. 12b: Computations for Case of Three Base Stations (cont) 

Fig. 13: Four Base Stations 

Fig. 14: Computations for Case of Four Base Stations 

Detailed Description of the Invention 

In IS-95 CDMA cellular network, each base station BS is synchronized to CDMA 
system time, which is derived from a precise time reference supplied by GPS satellites. 
All base stations in CDMA network use the same frequency channel, or carrier. 
Spreading codes are used to separate all signals in order to assure smooth channelization 
of both access and traffic communication channels, provide a level of privacy and 
preventing simple signal despreading. Active BS transmits pilot signal to MS on the 
downlink using the same Pseudo-Noise (PN) sequence; however, each pilot is offset in 
time from the others, allowing the subscriber to differentiate the signals. Each pilot PN 
sequence repeats every 26.67ms (at chip rate 1.2288Mchips/sec). Each BS pilot is 
transmitted with offset of 64x n-chips (52.08 jas), from other sequences. Every subscriber 
communicating with the BS uses the same spreading code and offset (except for 
propagation delays as will be described later) so that the long code is used to identify 
both access and traffic channels. A subscriber unit's (MS) time reference is offset from 
CDMA system time by the propagation time delays between base station BS and the 
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mobile subscriber's phone MS. These propagation delays create time and phase shifts in 
the system both in BS-transmitter and MS-receiver oscillators. 

The Cellular network Operator-initiated functions 

The Mobile Switching Center MSC is the heart of the wireless infrastructure 
network. Every circuit from a mobile handset MS is served by BS, which then homes into 
MSC via the Base Station Controller BSC. The MSC routes the calls to the PSTN, 
another MSC, an Internet Service Provider (ISP) or a private network such as Location 
Service LS, for connection to the appropriate destination. To ensure service 
communications such as LS via traffic management, the wireless network uses BSC 
controllers to segment the network and control congestion. The result is that MSCs route 
their circuits to BSCs, which in turn are responsible for connectivity and routing of calls 
for 50 to 100 wireless base stations BSs. In the present system, the MSC initiates a 
sequence of silent Positioning Request Signal (PRS) broadcasts with appropriate lists of 
BSs, and MSs approximately every 2 seconds via BSC control channel to all BSs. The 
BSs in turn to route the PRS broadcasts to all available mobile MSs within that specific 
mobile cell. The silent Positioning Request Signal (PRS) contain typically each MS code 
and ID, last recorded cell position in HLR and VLR registers for speedy distribution. 
Since it is essential to obtain a large number of MS position signals, the operator must 
deal with existing communication traffic constraints and the need for providing 
continuous tracking of MS data. 

The MS responds to position signal PRS only if the MS is currently in stand-by 
(idle) mode. The position service transaction uses reverse control RACCH channel with 
overall time estimate of about 40ms for each request/response transaction. (The operator 
can also obtain positioning data when MS is engaged, however we will concentrate on 
stand-by mode MS responses only.) Assuming, that about 1000 channels are available at 
each given BS at any moment the LS capacity can be said to be about 50 MS/channel/sec. 
or about 2000 to 2500 MSs per second. 

The Location Device modules LDs, described later in Fig. la and lb, which are 
installed on each BS process PRS responses in co-located for Timing Block Time- 
Start/Stop Stamping, TOA signal delays: r l9 T 29 ... 9 T m , or TDOA Ax for each MS (Fig. lc). 

From said multiplicity of cell base stations, TOA and TDOA data and timing 
information are then returned to MSC central Location Database Server (LDS) via digital 
interface. As mentioned before, the PRS positioning broadcast is made periodically say 
every two seconds in order to provide continuous anonymous tracking of all available 
MSs. In the interest of protecting privacy of individual MS a unique code cover will be 
provided for each MS and the real time tracking data used for statistical purposes only. 
Only individual clients interested in specialized tracking and positioning services may 
order so from the service operator after appropriate measures were taken. 

The cellular and PCS/DCs wireless service providers must fully control their own 
timing references and clocks at MSC locations using reliable and accurate clocking 
system that receives timing input directly from GPS. In order to assure accurate data at 
each LD module the LD uses the system synchronization pulse for LD timing. 

Fig. lc shows a diagram of Location Service Scheme with Location Devices 
located on each BS. Each LD shows synchronization by GPS clock, processing of 
individual MSi code signal and calculating TOA signal delays x when using single 
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antenna configuration shown in Fig. 3b. As will be shown later, the TOA data from 
absolute signal time delays are generally less reliable for accurate measurements. 

In the preffered embodiment the LD will proccess TDOA signal time delay 
differences on two antennas Al,l and Al,2 shown in Fig. 3a. All signal data from each 
BS will be sent to Location Database Server via digital interface for MS positioning. 

Fig. la shows a partial diagram of Location Device Scheme 1 with additional 
supporting antenna A2 describing Timing Block. This configuration is based on the 
TDOA method for two-reception channels in single BS. 

When only single existing BS antenna A2 is available, Fig. lb: Diagram of Location 
Device Scheme 2 will apply. The Timing Block here is based on the principle of absolute 
time of arrival TOA difference measurements in two reception channels in two separate 
base stations. 

Fig. 2 shows a diagram of phase synchronization between the MS Antenna Al 
and the BS heterodyne receiver. This system comprises mobile station MS with its local 
oscillator VCOi that is synchronized with the base station BS receiver's: VCO2 oscillator 
(2) by means of automatic control device. This device contains phase detector (4), loop 
filter (7), and gain control (5). Group signal delays result from MS signal propagation 
t and are calculated in Time Lag (3). The processes occurring in the phase-synchronizing 
system can be expressed by the differential equation: 

d<pldt + £l y * K(p) * F(<p) = Q 2 (1) 
where Q J is the initial frequency difference on VCOi and VC0 2 , K{p) is the coefficient 
of filter transfer (7), Q y the mutual de-tuning, F(<p) the phase detector characteristics 
(4) (Fig. 2). In the stationary mode under K(p) = 1 we obtain from equation (1): 

F(<p) = Q } /n y ±27ik (2) 
where <p = <p l -<p 2 , Q ; depends on the time delay between VCOi and VC0 2 oscillators, 
i.e., on the value A<p = co 0 t , where o> 0 =2x/T 0 the oscillator frequency. It is possible to 
measure phase shift (time interval r ) with a phasemeter in case of x fT 0 < 1 . If 
t/T 0 > 1 , it is necessary to use a measuring time device i.e., Timing Block (6), see Fig. 2. 
The group time delay r of a signal from MS to BS depends on the distance 

d = cr of MS from BS, where c = 3 * 10 8 /w/sec is the speed of light and is measured in 
Timing Block (6). 

Fig. 4a shows a partial Diagram of Location Device with a RF Stage receiver and 
IF Stage receiver located in BS for communication link with a single MS unit. 

Upon the arrival of MS signal to BS antenna A at high frequency RF Stage 
Receiver, the signal is transformed to intermediate frequency IF. The circuit contains: RF 
baseband Filters (1) amplifiers (2) mixers (3) synchronized with the frequency of carrier 
signal in heterodyne (4) in the PLL frequency synthesizer (5) controlled by operator's 
dedicated logical choice code. Synchronized signal conversion is de-modulated in 
demodulator of IF Stage Receiver. Demodulator contains Mixers (6), Shiffers (7), 
amplifiers (8) filters of low frequency Filters (9); analog to digital converters (10), 
frequency divider (4a) in second heterodyne of receiver. 
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In digital circuits of BS receiver signals go from ADC (10) and enter the decoder 
of digital M- sequences PN sequencer (23) of PN Descrambler (11), which provides 
selection of sequences with code attributes of MS window frames in CDMA. 

Continuing fromPN descrambler (11), digital sequences r y J and r ; Q from MS 

signals are passed to correlators (12) and (13) respectively via threshold device (14) and 
(15), to Correlators (12, 13) and on to Comparator (16). The signal is then returned from 
lower frequency filter (17), amplifier (18) in phase -controlled channel to the PLL 
synthesizer (5). Digital clock synchronizes base M-sequences for given MS. R j0 enters 

the additional correlator (20) through the decoder (PN Sequence). Output signals from 
correlators (12) and (20) are limited by threshold devices (14), (21) responsible for the 
formation of short-pulses and are entered to the time block (19), 

Timing block scheme and signal pulse shapes are shown in Fig. 5a and Fig. 5b 
respectively. 

Fig. 5b shows Pulses 1 and 2 arriving from thresholds devices (14) and (21) as 
seen in Fig. 5a and enter into trigger flip-flop (22) where samples of square-wave pulses 
shown in Fig. 5b are produced. Signal duration r of is proportional to the time delay 
which appears due to propagation delay on route from MS to BS, 

Square-wave pulses a' from flip-flop trigger (22) enter into first input logic- 
multiplier device (23b) and feed pulse packs into second logical re-multiplier device 
(23b). 

An output signal b' from device (23a) in Fig. 5b is formed as a result of 
multiplying short-pulses from the oscillator (24), pulses determining measurement time 
T m from frequency divider (27) f 'and pulses of overlapping windows of signal frames 
d' (Fig. 5b). 

Short-pulse packs in are formed on the multiplier-logic device (23b) and are fed 
to the counter (25). The overall number of pulses received in the counter (25) depend on 
amounts of packs P in one cycle of measurement process T m = N * 7^ , where N is the 
frequency division factor, = 1/ f 2 is the period of repetitions of pulses from the 

oscillator (24). The measurements of interval timeslot window-frames (Fig. 5b) are in 
the form of packs of counter pulses c' (Fig. 5b). The number of pulses in the counter for 
one time interval is t = r/T cr . The total amount of pulses in the counter equals 
C = (W jT r )*P . The duration of measurement cycle is chosen from the condition 
T m >P*T 0 where T 0 is the interval of repetitions of idle frames Fig. 5b. Under an 
appropriate choice of values of 7^, N,P, the number in the counter (25) will be 
proportional to time. In general, measurement times T m are determined by the division 
factor N in the Divider (27). Information from the counter passes through the decoder 
(26) and enters the computer CPU. In PDN (Public Digital Network) similar information 
will be sent from other BSs, which are participating in the location of MS calculations. 

Fig. 4a and Fig. 4b show a partial diagram of single MS communicating with BS. 
It shows high-frequency RF-Stage Receiver, low-frequency IF-Stage Transmitter and 
various circuits of multi-channel BS transmitter. Spreading of signal on route from BS to 
MS contributes to signal delay in the synchronization system. MS signal delay is 
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corrected in the PLL frequency Synthesizer (5) which also monitors MS signal frequency 
and phase delay. 

It is possible to locate MSs by the TOA method if the cellular communication 
system is synchronized and all BSs equipped with the PLL synthesizers are participating 
in location measurements. When this condition is not present due to mutual frequency 
and phase delay, the TOA measurements will become inaccurate. 

In non-synchronized cellular communication systems such as GSM (TDMA), we 
propose to add an additional antenna with communication channel on each BS that will 
be participating in determination of location of MSs. The inventive device shown in Fig. 
6a and Fig. 6b contains: two broadband antennas Al,l and Al,2 which are installed on 
one base station BS1, see also Fig. 3b, one channel in RF Stage Receiver 1 with high- 
frequency circuits for RF1 conversion, and IF Stage Receiver 1 for low-frequency 
conversion, and another channel with RF and IF Stage Receivers 2, and Digital Clock (8) 
in Fig. 6b for signal synchronization. 

High-frequency circuits for frequency conversion RF1 and RF2 contain: 
Bandwidth filters (1) single-line amplifiers (2), mixers (3), and the general source 
heterodyne voltages - PLL Frequency Synthesizer (4). Circuits for frequency conversion 
in IF1 and IF2 in IF Stage receiver 2 contain: single-line amplifiers, mixers, shifters, 
divider of frequencies, low - pass filters. 

The digital signal block in Fig. 6b contains analog-to-digital ADC-converters (9), 
PN Descramler (10), signal-coordinated correlators (1 1) and (12) (matched filters). The 
inventive device functions as follows. 

MS signals enter the two antennas Al,l and Al,2 located on the monitoring BS1. 
If the MS is located in a distant network cell, the electromagnetic wave front arrives 
earlier to antenna Al,l than to antenna Al,2. Their relationship may be described by the 
right-angled triangle BCD, from which the time lag may be calculated as 

At = (Z)sin(a))/c = (Dcos(J3))/c 
where D is the distance between antennas in single BS, a the angle of reception of the 
electromagnetic wave front, /? = 90° - a . Phase shift between signals in antennas is 
expressed by: 

<p = o) 0 At = 2^ 0 (Z>/c)cos(/?) = {2nD)l A 0 cos(/?) 
where f 0 = l/T 0 = co 0 I2n y X 0 = cf f 0 is frequency and duration of carrier wavelength. If 
the distance between antennas isD < X 0 12 , time lag can be defined by a phase method. 

In this case measuring time block may be used as a phasemeter for measurement limits 0 
- 360°. Under such a small distance between dipoles, the antenna functions as a simple 
array antenna. When D > X 0 / 2, the phase measurements become ambiguious since 
At > T 0 and <p = 2nk + <p iz CDMA, 

/ = 900Mhz , X 0 = 30cm , T 0 = 0.99 * 10" 8 sec . Ambiguity in the distance measurements 
is repeated at intervals d 0 = cT 0 = 2.91m , d = kd 0 +d iz , d u < cT 0 , where <p iz , d iz are 
the measurements of phase shifts and distance respectively. 

For eliminating ambiguities and improving accuracy of distance measurements, 
we propose to combine TDOA measurements with phase difference measurements. 
Signals from antennas Al,l and Al,2 enter into high-frequency dual-channel RF Stage 
Receiver in which the signals are transformed from carrier high-frequencies to the 
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intermediate frequency f pr - llQMhz . The software controlled PLL frequency 

synthesizer (4) is used as signal from heterodyne receiver. Low IF stage receiver 
transforms synchronously high frequency signals into low frequencies, and then into 
digital signals by means of the analogue-digital converters ADC (9). The signal from 
frequency divider (6) is used as a heterodyne signal that is then passed through and over 
to Mixer (3) and to ShifFers (5). Low frequency signals are produced and divided in 
mixers (3) and low frequency filters (7). Digital signals are subdivided by means of 
decoder (10) by time-coding and id-coding for the given MS r $ and enter correlators 1 1 

and 12 for first and second channels. Short pulses starting from flip-flop trigger (15) are 
formed by means of treshold devices (13) and (14) and from matched-filters generated 
responses. Square-wave pulse is an output from trigger (15) and is proportional to 
propagation wave-delay due to the distance from MS to BS. 

Duration of pulses is measured by means of pulse-counter from the oscillator (20) 
as they enter through logical multiplier devices (16) and (17) when input equals logical 
"1" as received from the window-frame monitor in CDMA (22), trigger (15) , frequency 
divider (24) and oscillator (20) in Fig. 6a. Pulse packets from multiplier-logical device 
(16) are counted by the counter (23) with the time interruptions. Accuracy of location 
measurement of MS depends on duration of measurement process T m . This time is 
determined by the pulse duration with frequency divider (24). 

Signal exchange between BS and MS in the monitoring mode is on DCCH 
(Digital Control Channel) which provides synchronization of frequency FCCH 
(Frequency Correction Channel) and SCH (Synchronization Channel) for time delay 
compensation. 

Response signal will be sent on the special PCS channel from MS to each BS. 
Device (22) forms a video-pulse of window-frame interval in the CDMA PCS channel. It 
is possible to form similar video-pulse from digital signal oscillator (Digital Clock). 
Measurement duration of time-interval process T m -N^T^ can be changed by assigning 
different coefficient factors N by divider (24). The number of pulses, which are 
accumulated in counter (23) for measurement times T m can be calculated as 

C - 10 w * p(Ar I ) , hence At = CT cr f(p * 10 " ) , where p represents the amount of time 
intervals for time T m , n is an integer, and AtIT ct is the number of pulses in the 
measured interval At . Pulses pass through the decoder (19) and are transmitted to 
Location Database Server (LDS) (4) (Fig. la) via digital interface. Similarly, digital 
information on the values At u At 2 ,...,At n received on base stations B SI, BS2, BSN 
enters the LDS (4) (Fig. la) for calculation of the MS coordinates. Naturally, additional 
equipment in existing BSs will be required for TDOA calculations and therefore it may 
be necessary to allocate more time for position requests access calls. An advantage of this 
method is in improvement of At measurements since BS receiver's channels are identical 
with respect to delays. 

It is possible to estimate the azimuth location of an MS by using array antennas. 
If the distance D between antennas Al,l and Al,2 is known, and the wave phase front 
WPF direction of lines Al,l and Al,2 (Fig. 6a) can be estimated accurately enough, the 
position of the MS can be calculated. When the values of D , /? and y are known, the 
AO A method can be applied for calculating the distance from MS to Al,l or to Al,2. 
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This method requires improved antenna systems and electronic beam control of receiving 
electromagnetic waves. The TOA, AO A and TDOA methods may bring in the following 
inaccuracies: 

1. Inaccuracies due to a finite front of pulses formed by threshold devices, which 
are determined by the level of receiver noises and channel interference. The minimum 
threshold is defined by the signal resolution mp that is calucated as 

m^E/N^P^KP^B) (3) 

where E is the energy of bit of information signal, N 0 the energy of noise, B the signal 

base, P Sttdn the minimum power of signal ensuring reliable measurement (sensitivity of 

receiver- 1 16db), P nin the noise power of receiver's input, For mobile communication 

CDMA systems: P Jmin = 4 * 10"" Bt , P nin = kTF n G = 6 * 10" 14 Bt , where F is the noise 

bandwidth of receiver 1 . 5 * 1 0 6 Hz , G the receiver 5 s noise coefficient 7- 1 Odb, 

B = F/C = 130 , whereF is receiving channel bandwidth (1.25 Mhz), C the rate of 

information transferral (9.6 Kbit/sec). From the formula (3) we obtain m p = 5.12 . It 

follows then that more then 1/5 of responses from matched-filter will be impossible to 
use as response-pulses for the trigger (15). If the initial threshold level from filter (15) 
equals 0.9 from the beginning of the response-pulse, then the duration of pulse is 0. 1 * t b , 

where t b is the duration of bit of information signal data. The duration of response pulse 

can be expressed as A7^ = 0.82 * 10" 7 sec 

when the repetition frequency of noise-image of signal equals 1.238 MHz. After having 
calculated the value m p *B = 665.6 , it is possible to determine the probability of correct 

measurement of time interval P C m=0.94 (Skolnic, M. J. Radar Handbook, vol. 1, 
McGraw-Hill, 1970). 

2. Errors due to discreteness of measurements of time interval r or At for one 
cycle that are determined by the period of pulse repetitions from the oscillator (24) in Fig. 
5a. 

The error of measurement increases p times as it is proportional to p 
measurement repetitions in window-frames in CDMA. This error will be averaged over 
the measurement process. The resulting inaccuracy will be equal to T^-Jp - AT 2 . When 
the frequency of oscillator (24) is 100 Mhz, and the number of time lags is p = 50 , the 
error will be AT 2 - 7*io -8 sec . 

3. Errors due to delays in flip-flop trigger (15) (Fig. 6a) which for most micro- 
circuits are approximately AT 3 = 10ns . The total error of time lag measurements will be 
Ar s = 162 ns with probability 0.94. This corresponds to the error AT Z * C = 48.6 m in 
range determination. Signal delay that appears in standard BS receiver channels can also 
be measured and included as systematic equipment delay since it does not vary much 
between MSs. 

The use of TOA and TDOA methods in the standard TDMA/FDMA systems 
brings about dramatic decrease of accuracy due to narrow bandwidth F=200 Khz. Indeed, 
it is 6 times less precise than measurements achieved in the standard IS-95 (CDMA) so 
that in general, the errors may be 300m or more. 



13 



Makor 009 



Intelligent mathematical application based on wireless 3D hyperbolic trilateral location 
method for determining cell phone position and filtering out possible position ambiguities 
Radiolocation systems attempt to locate a MS by measuring propagation times of 
the radio signals traveling between the MS and a fixed set of BSs. There are three major 
types of radiolocation systems: those based on signal strength, or attenuation methods 
(AT), those based on angle of arrival (AO A), and those measuring time of arrival (TOA 
or TDOA). 

Typically, signal measurements are used to determine the length or direction of 
paths to/from a MS from/to multiple BSs, and then geometrical relationships are used to 
determine the location. The lines of position are the curves that describe the possible 
location of the MS with respect to a single BS for each of those methods. Each of the 
lines of position can be described mathematically using the relative geometry of the BSs 
and MS, while intersection of those lines indicates the presumed location of the MS. The 
same principles could and have been used to determine locations of cell phones. 
However, in order to achieve good accuracy in location estimates, it is necessary that line 
of sight paths exist between the MS and the BSs that are utilized in the location process, 
and a minimum of three BSs are available for the purpose. These conditions can by no 
means be always assumed in real situations, especially in urban areas where ambiguities 
arising from multiple crossings (multipaths) are very common. Therefore, various 
combinations of the above mentioned methods will be used for exhaustive utilization the 
existing data on the one hand, and for filtering out possible false locations on the other. 
For convenience, the situations involving different numbers of available BSs together 
with appropriate methods or combinations thereof will be considered one by one starting 
with the cases of a single BS. The general scheme of computations is shown in the 
flowchart in Fig. 1. From now on, it will be assumed that coordinates of locations of all 
BSs are stored in the database and are available to the relevant algorithms. 

Case of a Single Base Station (Unit 2 in Fig. 8) 

To determine location of MS in this case, a combination of AOA and AT methods 
may be used as illustrated in Fig. 9. The techniques used in the AOA method determine 
the direction of MS relative to the BS, which is a narrow sector between two rays while 
the AT estimates the distance, i.e., gives a narrow band between two circles with their 
centers at the BS. Their intersection defines a small hatched region in Fig. 2 where the 
MS is assumed to be located. The resulting location cannot be considered as very reliable 
as the data are too scanty to attempt any checkups, and no protection against multipath 
propagation or signal distortion could be provided. 

Case of Two Base Stations (Unit 4 in Fig. 8) 

In this case we can use both AOA and AT methods. In general we have here 
seven points of intersection for the MS location point (see Fig. 10): 

A is the point of intersection of the two rays in the AOA method; B } and B 2 are 
two points of intersection of the first ray with two circular lines corresponding to two BSs 
in the AT method; B 3 and B 4 are similar points for the second ray; and C x and C 2 are 
two points of intersection of the two circular lines. 
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First, we can consider the group of points A, B x , B 2 , B^, B 4 , and decide 

whether they are close enough based on some adopted tolerance criterion. If they are, we 
can compute the center of the group (by averaging the coordinates of the points) and take 
it as a candidate for location estimator L x , otherwise we declare the location 
undetermined. Second, we can choose the nearest of the two points C x and C 2 , in Fig. 
10, it is C x . Now we can compute the center of the group A, B x , B 2 , j5 3 , B 4y C, , and 
adopt it as the final location estimator L . 

Alternatively, robust methods could be used here as described in 'Redundancy, 
Ambiguity, and Robust Location Estimators' below. They have an obvious advantage of 
being able of producing sensible results even in the presence of outliers, i.e., gross 
measurement or other errors. 

Case of Three Base Stations (Unit 6 in Fig. 8) 

In this case, both the AOA and the AT could be used for all three BSs. The AOA 
produces three intersections of three pairs of rays i.e., three candidate points for a 
location (see Fig. 1 la), while the AT produces six intersections of three pairs of circular 
lines (see Fig. lib). 

First, we consider the three candidate points produced by AOA. If they are close 
by our tolerance criterion, we will compute their center L x , otherwise they are discarded. 

Similarly, we select three closest points among three pairs in the AT method (one 
from each pair), and if they are close enough, compute their center, say L 2 . If both L± 
and L 2 have been able to be computed, the final estimate of location could be compute as 
their weighted average 

L = a l L l +a 2 L 2 

where the weights a x and a 2 reflect the degree of our faith in the reliability of the 

corresponding estimates. This could be done in more than one way, in particular, the 
standard Kalman filter could be exploited here. 

The flow of computation is shown in Fig. 12a- 12b, 
In Unit 1, the AOA method computes the three intersections of three pairs of rays. If 
they are close (Unit 2), the indicator variable AOA is set to 1, and the center of the 
group is computed in Unit 3, otherwise the indicator variable AOA is set to 0 in Unit 4. 

In Unit 5, the AT method computes the six intersections of three pairs of circular 
lines. If they are close (Unit 6), the indicator variable AT is set to 1, and the center of the 
group L 2 is computed in Unit 7, otherwise the indicator variable AT is set to 0 in Unit 8. 

Now if both indicator variables AOA and AT equal 1 (Units 9 and 13), the weight 
formula above is used for computing the location in Unit 16. 

If AOA=0 but AT=1 (Unit 10), the location is set equal to the center of group 
computed by AT method in Unit 11. 

If AOA=l but AT=0, the location is set equal to the center of group computed by 
AOA method in Unit 14. 

Finally, if both AOA and AT are zero (Units 9 and 13), no location is computed 
(Unit 12). 

Case of Four Base Stations (Unit 8 in Fig. 8) 
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Four base stations will allow using the TDOA method for computing 3- 
dimensional locations of MSs, see Figs. 7 and 13. 

Location signals emitted by a MS are registered by four synchronized base station 
BST dual vibration antennas with their start /stop arrival times. The differential times of 
arrival of these signals to BSs can be measured with high precision (e.g. 50 nanoseconds) 
via GPS clock in the timing block (see above). Using these differential times collected 
from four BSs, the application is able to compute 3-dimensional location of the MS. This 
direct method gives explicit (x, y, z) location of the MS and in that differs from existing 
methods, which rely on approximations. 

To handle ambiguities in case of two or more solutions or/and multipath effects, it 
may be necessary to use additional base stations, or other location methods such as Angle 
of Arrival (AO A) and Attenuation Method (AT), see below. 

Fig. 13 shows the most general mutual configuration of four BSs and an MS. The 
paired differences of distances traveled by signals may be expressed as follows: 

MB X -MB 2 =Z) 12 
MB X ~MB 3 = D X3 
MB X -MB 4 =D ]4 

where MB X is the distance between the base station B x and the moving station M , etc. 

The differences D n . . . can be written as D n = c * (T } - T 2 ) , . where c is the speed 
of electromagnetic propagation, T x the propagation time from B x to M , etc. 
Denoting the coordinates of the base station B t by (x i9 y i9 z f ) for / = 1,2,3,4 , and the 
coordinates of the MSM by (x,y y z) , these equations can be transformed in the 
following equations 

«*-*.) 2 +0>-*) 2 +(*-*i)) 1/2 -((*-* 2 ) 2 +Cy- y 2 ) 2 +(z-z 2 ) 2 f 2 =D X2 
a*-*,) 2 +(y-y x ) 2 H*-*i)) U2 -«*-* 3 ) 2 +0" j 3 ) 2 +(z-z,) 2 f 2 =D X3 

((x-x x ) 2 +(y-y x ) 2 +<*-r I )) ,/a -((x-x 4 f+(y-y 4 ) 2 Hz-z 4 ) 2 ) U2 =D X4 

These equations can be solved directly in the general case as shown below. 
Besides, there are a number of particular cases in which the computations above can be 
considerably simplified so that they merit a separate consideration (see Fig. 14). 
These particular cases are identified by conditions like 

D n = D n , D X2 = D u = D X4 , etc. and will be listed ahead along with the corresponding 

solutions. We begin though by giving the direct solution of these equations in the most 
general case. 

x = A + B*z 
y = C + D*z 

z = (-H±(H 2 -G*I) U2 )/G 

(see Redundancy, Ambiguity, and Robust Location Estimators below). 



Here 
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A = (b l23 *R-d l23 *P)/(a l23 *P) 
B = (b m *Q-c m *P)/(a ]23 *P) 
C = -R/P 
D = -Q/P 

E = (B*(x 2 - X] )+D*(y 2 -y,) + z 2 -z x )ID n 

F = 0.5*(S x -S 2 -D u 2 +2*A*(x 2 -x x ) + 2*C*(y 2 -y } ))/D n 

G = E 2 -B 2 -D 2 -1 

H = E*F-B*(A-x 2 )-D*(C-y 2 ) + z 2 
I = F 2 -(A-x 2 ) 2 -(C-y 2 ) 2 -z 2 2 

P =~ a \2i * b \2A la \U + *123 
Q = ~ a \23 * C \24 I a \24 + C 123 

R = -a X23 *d 124 /a n4 +d U3 

a 123 = 2*(x, -x 2 )/D X2 -2*(x, -x 3 )/D n 

^,23 = 2*(y l -y 2 )/D X2 -2*(y x -y 3 )/D n 

c i23 =2*(z i -z 2 )/D X2 -2*(z l -z 3 )/D X3 

d m =(S 2 -S x -D X2 )ID n + (S 3 + S X +D X3 2 )/D n 

«i24 =2*(x, -x 2 )/D n -2*(x x -x 4 )/Z) 14 

*,24 = 2*0', - 2*(y, -y 4 )/A4 

c 124 =2*(z, -z 2 )ID X2 -2*(z x -z 4 )/A 4 

^,24 = to -D X2 )ID l2 + (S 4 +5, +D u 2 )/D n 

O 2,2,2 

rr 2 2 2 

S 2 =*2 + Z 2 

rt 2 2 2 

S 3 =x 3 +y 3 +z 3 

c 2 , 2,2 

Although these formulas are valid in the most general case, we consider now a 
number of particular cases in which the computations above can be considerably 
simplified. The conditions under which those cases are valid make a set of nested 
condition starting with D n = D 13 . We will be always assuming that equality conditions 
are listed first, and in a case of 

D l2 *0 9 D 13 - 0, for example, relabelling should be done first. 
All particular cases are obtained by assuming D ]2 - 0 . 
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Case 1: D n = 0,D n * 0,D H * o 

Two subcases will be distinguished here: Case 1.1 and Case 1.2. 
Case 1.1: x l &x 2 and y x *y 2 . 

In this case, the coordinates of a MS can be computed by the formulas: 

x = A + B*z 

y = C+D*z 

whereas z is computed as 

z = JIG 

or as 

z = I/J 

(see Redundancy, Ambiguity, and Robust Location Estimators below) 

Here the symbols A,B,C , etc. have the following values 

A = ((z 2 -z ] -C*(y 2 -y l ))/(x 2 -x x ) 

B = l/2(S 2 -S x )l{x 2 -x x )-D*(y 2 -y x )l(x 2 -x x ) 

C = {K*(z 2 -z x )-M*(x 2 -x x ))l{K*(y 2 -y x )-L*{x 2 -x x )) 

D = (l/2K*(S 2 -S l )-N*(x 2 -x 1 ))/(K*(y 2 -y i )-L*(x 2 -x l )) 

E = (B*(x 4 -x x ) + D*(y 4 -y x ) + z 4 -z x )JD l4 

F = 0.5*(S x -S 4 -D X4 2 +2*A*(x 4 -x x ) + 2*C*(y 4 -y x ))/D X4 

G = E 2 -B 2 -D 2 -l 

H = 2*(E*F-B*(A-x 4 )-D*(C-y 4 )+z 4 ) 

I = F 2 -(A-x 4 ) 2 -(C-y 4 ) 2 -z 2 

J = -H/2- sign(H) *(H 2 -G*I) m 

K = (x x -x 3 )/D X3 -(x x -x 4 )/D X4 

L = (j,-y 3 )/D ]3 -(y ] -y 4 )/D ]4 

M = (z } -z 3 )/D X3 -(z x -z 4 )/D u 

N = 1/2(S 4 -S X -D X4 2 )ID X4 -\I2(S 3 -S x -D n 2 )/D u 

Case 1.2: x x =x 2 and y x *y 2 . 

In this case, the coordinates of a MS can be computed by the formulas: 

x = A+B*z 
y = C+D*z 

whereas z is computed as 

z = J/G 
or as 
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Z = IIJ 

(see Redundancy, Ambiguity, and Robust Location Estimators below). 
Here the symbols A,B,C, etc. have the following values: 

A = (Or, -z 4 )ID X4 -(z x -z,)ID n -(z x -z 2 )/(y 2 -y x ))IK 

B = l/2((S 4 -S x -D X4 2 )ID X4 -(5 3 -S x -D u 2 )/D n -L*(S 2 -S x )/(y 2 -y,))/K 

C = (z x -z 2 )/(y 2 -y x ) 

D = l/2(S 2 -S x ) 

E = (B*(x 4 -x l ) + D*(y 4 -y 1 ) + z 4 -z l )/D x4 

F = 0.5*(S x -S 4 -D X4 2 +2*A*(x 4 -x x ) + 2*C*(y 4 -y x ))/D X4 

G = E 2 -B 2 -D 2 -l 

H = 2*(E*F-B*(A-x 4 )-D*(C-y 4 ) + z 4 ) 
I = F 2 -(A-x 4 ) 2 -(C-y 4 ) 2 -z 4 2 
J = -H/2- sign(H) *(H 2 -G*I) U2 
K=(x x -x 3 )/D n -(x i -x 4 )/D X4 
L = (y x -y 3 )/D l3 -(y l -y 4 )/D u 

Case 2: D n = D n = 0,D X4 * 0 

In this case, we will also consider two subcases. 

Case 2.1: x, ^x 3 and y x * y 3 ,x x *x 2 

Here x and y are computed by the formulas above 

x = A+B*z 

y = C + D*z 

whereas z is computed as 
z = J/G 
or as 
z = I/J 

The symbols A,B,C , etc. have the following values 

A = (L*(z x -z 2 )-M*(y x - y 2 ))/(L * (x 2 - *,)) 
B = 1/2(S 2 - S x - N * (y 2 - y x )IL)l(x 2 - x, ) 
C = -MIL 
D = NIL 

E = C*(x 4 -x,) + A*(y 4 -y l ) + z 4 -z 1 

F = (D-x x ) 2 -(D-x 4 ) 2 +(B-*) 2 ~(B-y 4 ) 2 + z 2 -z 2 -D u 2 
G = C 2 +A 2 -E 2 +l 

H = 2*(C*(D-x 4 ) + A*(B-y 4 )-z 4 )-E*F/D X4 
I = {D-x 4 f +(B-y 4 ) 2 +z 4 2 -1/4*F 2 ID X4 2 
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J = -H/2- sign(H) *(H 2 -G*I) 



1/2 



Case 2.2: x { = x 3 and y x * y 3 ,x x * x 2 
Here x and y are computed by the formulas above 

x = A + B*z 
y = C+D*z 
whereas z is computed as 
z = JIG 
or as 
z = IIJ 

The symbols A,B,C , etc. have the following values: 
A = (z l -z 3 )/(y 3 -y l ) 

5 = l/2(5 3 -5 1 )/0 3 -J 1 ) 
C = (^*(7 1 -j 2 )-(z 2 -r 1 ))/(x 2 -x 1 ) 
D = (1 / 2 * (S 2 - S, ) - B * (y 2 - y, )) l(x 2 - X] ) 
E = C*(x 4 -x i ) + A*(y 4 -y l ) + z 4 -z ] 
F = (D-x,) 2 -(p-x 4 ) 2 +(B- yi ) 2 -(B-y 4 ) 2 + z> -z 4 2 -D, 
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G = C 2 +A 2 -E 2 +l 

H = 2*(C*(D-x 4 ) + A*(B-y 4 )-z 4 )-E*F/D„ 
I = (D - x 4 ) 2 + (B - y 4 f + z 2 - 1/4 * F 2 ID, 2 
J = -H/2- sign(H) *{H 2 -G*I) V2 

Case 3: Equirange Configuration 

In this case, the coordinates of a MS can be computed by the formulas 

x = -A x /A 

z = -A z /A 
where 



^1-^2 yi-y^ *2- z \ 

A x = \I2S X -S 3 y 3 -y } z 3 -z, 
Si~S 4 y 4 -y x z 4 -z x 



J 2 X 2 *1 



s } -s : 

1/25,-^3 



X 3 X ? Z 3 2j 
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S x -S 2 x 2 -x x y 2 -y x 



A 2 = l/2S x -S 3 x 3 -x x y z -y x 



S x -S 4 x 4 -x x y 4 -y x 



x i~ x x y%-y x z 2~ z x 



y 4 -yi 



X 4 Xj 



The last determinant A is nonzero as the four base stations do not lie on a straight line. 

Redundancy, Ambiguity, and Robust Location Estimators 

The TDOA method described above gives in general two candidate points for a 
MB position in the four base stations case (see formulas for z above). Other location 
methods could be used here as well. 

Thus, the AO A method could be applied for the six paired combinations of base stations 
producing additional candidate points, and the attenuation method would also give a 
number of feasible locations. The total set of candidate locations would have to be sorted 
out because of presence of probable outliers resulting from gross from measurement 
errors, multipath phenomena, etc. So that redundant candidate points can actually help to 
improve on location estimators. 

Assume that we obtained a group of points 

as candidates for the BS position. One feasible estimator of MS location is the median of 
the group, i.e., the point 

where x M and y M are computed as medians of the corresponding coordinates: 

x M = median(x Xy x 2 ,...,x n ) 

y M =median(y u y 2 ,...,y n ) 

The corresponding unit is Unit 10 in Fig. 8. 

Case of More Than 4 BSs (Unit 9 in Fig. 8) 

In such cases the matters are not much different from the case of four base 
stations. The TDOA method can be used in conjunction with various paired 
combinations of four bases stations, and other methods could be applied as well together 
with computations described in context of redundancy and ambiguity. 



Refinements and Future Embodiments 

The inventive method and Location Device LD for mobile communication 
systems can be expanded for use in all digital technologies- TDMA, CDMA and GSM. 
As described herein, any cellular system, which is synchronized by, system timing input 
can be equipped with fixed location-finding, stand-alone LDs. For unsynchronized 
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networks, the signals are also received and Ms position is deduced geometrically from 
time delays measured at LD between MS and BS. 

In ETSI TS 101 528 GSM (Version 8.1.0) Location services are enhanced by assistance 
data broadcast messages from the Serving Mobile Location Center (SMLC) and the 
Mobile Station (MS). In this and previous versions many concepts such as Location 
request broadcasts from SMLC and MS-originating self-position requests are introduced 
into Phase 2+ Digital cellular telecommunications (GSM) system procedures. Similarly, 
all known position methods such as TO A, Enhanced Observed Time Difference (E-OTD) 
and GPS positioning are utilized to deal with particular MS location determinations. 
As described herein, the present invention provides a comprehensive approach to location 
of multiplicity of MSs in order to accumulate large storage of MS position data in real 
time for ITS evaluations. It is hoped that by optimizing location techniques and their 
traffic loads on existing and future communication networks will advance and facilitate 
our goals. 



